← WordPress Vulnerabilities
WordPress security by component

Image Resizer On The Fly

Image Resizer On The Fly is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jun 14, 2025; the highest CVE/CNA score is 9.1.

Plugin slug: image-resizer-on-the-fly

CVE-2025-6065: Image Resizer On The Fly: Code execution

Image Resizer On The Fly is affected by code execution. The vulnerable path is reachable without authentication. Successful exploitation can run attacker-controlled code in the WordPress hosting account.

PublishedJun 14, 2025
Safe version guidanceSee mitigation notes
Safe version
Jun 14, 2025 CVE-2025-6065
Image Resizer On The Fly: Code execution
Image Resizer On The Fly is affected by code execution. The vulnerable path is reachable without authentication. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
See mitigation notes
CVE9.1
NVDPending